PianoWorks, Inc.
bd_c5bfa668a8e6964b · schema v1 · pii pii-v1
PianoWorks, Inc. notified customers of a data breach involving its e-commerce host, Aptos. Between Feb-Dec 2016, an unauthorized third party gained persistent access to customer purchase data. Exposed data included names, addresses, emails, and encrypted payment card info. The incident was reported to the FBI and DOJ. Mandiant was engaged for remediation; Kroll provided 1-year identity monitoring.
J jump to incidentP pin to compareR raw source
Incident timeline
Feb 1, 2016
Begins
Aug 24, 2017
Filed
Linked disclosures
Why this link?Regulatory filings (2) · sorted by filing gap
- New Hampshire State AGbd_53e170aecf2bb0af2017-08-24Verified
- Massachusetts State AGbd_2635a1057d9d0fe42017-08-25 · +1dVerified
Filing propagation · 3 filings · 3 states
View merged incident ↗Evidence ladder
Attacker assertion only. Establishes: claim date, group, alleged victim.
Unlocks: incident narrative, operational impact. Still no compliance clock.
Unlocks: discovery date, data types, affected count, compliance clock.
Unlocks: materiality, stated response, full audit trail. Ceiling removed.